Filtered by vendor Turboboost Commands Project
Subscribe
Filtered by product Turboboost Commands
Subscribe
Total
1 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-2024-28181 | 1 Turboboost Commands Project | 1 Turboboost Commands | 2025-12-05 | N/A | 8.1 HIGH |
|
turbo_boost-commands is a set of commands to help you build robust reactive applications with Rails & Hotwire. TurboBoost Commands has existing protections in place to guarantee that only public methods on Command classes can be invoked; however, the existing checks aren't as robust as they should be. It's possible for a sophisticated attacker to invoke more methods than should be permitted depending on the the strictness of authorization checks that individual applications enforce. Being able ...
Show More |
|||||